
ggshield
Detect and validate 500+ types of hardcoded secrets with advanced checks. Use it as a pre-commit hook, GitHub Action, or CLI for proactive secret…

Detect and validate 500+ types of hardcoded secrets with advanced checks. Use it as a pre-commit hook, GitHub Action, or CLI for proactive secret…

Find, verify, and analyze leaked credentials

Agent-powered vulnerability scanner for large-scale codebases. Uses LLMs to find hard-to-detect security issues via regex matchers and AI…

safe execution paths for agents - zero trust, zero setup, zero latency.

find hardcoded strings from source code

AI-native code security auditor on AgentField that proves exploitability with verdicts, traces, and actionable evidence.

Reverse engineering assistant that uses a locally running LLM to aid with pseudocode analysis.

🧬 Extract and analyze contributors info from git repos

Static analysis tool that scans Dockerfiles for insecure commands and configuration issues, providing actionable security notifications to harden…

Fast and accurate AI powered file content types detection

Lightweight static analysis for many languages. Find bug variants with patterns that look like source code.

AI-powered reverse engineering assistant that bridges IDA Pro with language models through MCP.

CodeQL: the libraries and queries that power security researchers around the world, as well as code scanning in GitHub Advanced Security

Static analysis tool for infrastructure as code that detects cloud misconfigurations, vulnerabilities, and secrets across Terraform, Kubernetes,…

Static analysis tool for CI/CD systems that detects and fixes security issues in GitHub Actions, Dependabot, and pre-commit configurations, including…

Isolated JavaScript sandbox for Node.js that runs untrusted code with restricted access to built-in modules and host resources via Proxy-based…

A coding-agent skill for multi-phase security audits with independently verified, machine-readable findings